A flaw possibility of race condition and incorrect initialization of the process id was found in the Linux kernel child/parent process identification handling while filtering signal handlers. A local attacker is able to abuse this flaw to bypass checks to send any signal to a privileged process.
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2020-35508.json"
[
{
"target": {
"file": "kernel/fork.c",
"function": "copy_process"
},
"digest": {
"length": 10630.0,
"function_hash": "199929844613441072230108547409304491551"
},
"signature_type": "Function",
"id": "CVE-2020-35508-084735aa",
"source": "https://github.com/torvalds/linux/commit/b4e00444cab4c3f3fec876dc0cccc8cbb0d1a948",
"deprecated": false,
"signature_version": "v1"
},
{
"target": {
"file": "kernel/fork.c"
},
"digest": {
"line_hashes": [
"248460926096966247485912235231829234717",
"248345345962780307804071250283232320839",
"108476209509725119135455150896459777583",
"116381765186714630674019138957311354730",
"78581088586804153115591162953096478413",
"86977795003601750580248831643998635350",
"206688610044801100264467134666641294249",
"114209132842586028424013841331022276937",
"217592618426756983288143513485620094570",
"59989560180862471660433600208288604619",
"176066663537495850664080114561321427826",
"141094374865597032471041802996712236865",
"127578840436030822369110162981714609629",
"110411827031053026321431416578180614808",
"256914082790045306959396234837290484260",
"111276588822748984785389556321755083863",
"85522415457119748784681366208650713208",
"46203726329824829268961505723345191443"
],
"threshold": 0.9
},
"signature_type": "Line",
"id": "CVE-2020-35508-de62b068",
"source": "https://github.com/torvalds/linux/commit/b4e00444cab4c3f3fec876dc0cccc8cbb0d1a948",
"deprecated": false,
"signature_version": "v1"
}
]